2023 CVE Vulnerabilities
31,442 CVEs published in 2023.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2023-1239 | MEDIUM | 4.8 | 0.5% | Mar 7, 2023 | Cross-site Scripting (XSS) - Reflected in GitHub repository answerdev/answer prior to 1.0.6. |
| CVE-2023-1238 | MEDIUM | 5.4 | 0.6% | Mar 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6. |
| CVE-2023-1237 | MEDIUM | 5.4 | 0.4% | Mar 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository answerdev/answer prior to 1.0.6. |
| CVE-2023-23554 | HIGH | 8.8 | 0.9% | Mar 7, 2023 | Uncontrolled search path element vulnerability exists in pg_ivm versions prior to 1.5.1. When refreshing an IMMV, pg_ivm... |
| CVE-2023-22847 | MEDIUM | 4.3 | 0.6% | Mar 7, 2023 | Information disclosure vulnerability exists in pg_ivm versions prior to 1.5.1. An Incrementally Maintainable Materialize... |
| CVE-2023-1212 | MEDIUM | 4.8 | 0.5% | Mar 7, 2023 | Cross-site Scripting (XSS) - Stored in GitHub repository phpipam/phpipam prior to v1.5.2. |
| CVE-2023-1211 | HIGH | 7.2 | 3.0% | Mar 7, 2023 | SQL Injection in GitHub repository phpipam/phpipam prior to v1.5.2. |
| CVE-2023-27891 | HIGH | 7.5 | 0.6% | Mar 6, 2023 | rami.io pretix before 4.17.1 allows OAuth application authorization from a logged-out session. The fixed versions are 4.... |
| CVE-2023-0330 | MEDIUM | 6 | 0.3% | Mar 6, 2023 | A vulnerability in the lsi53c895a device affects the latest version of qemu. A DMA-MMIO reentrancy problem may lead to m... |
| CVE-2023-26601 | HIGH | 7.5 | 34.1% | Mar 6, 2023 | Zoho ManageEngine ServiceDesk Plus through 14104, Asset Explorer through 6987, ServiceDesk Plus MSP before 14000, and Su... |
| CVE-2023-24217 | HIGH | 8.8 | 4.5% | Mar 6, 2023 | AgileBio Electronic Lab Notebook v4.234 was discovered to contain a local file inclusion vulnerability. |
| CVE-2023-26949 | CRITICAL | 9.8 | 0.9% | Mar 6, 2023 | An arbitrary file upload vulnerability in the component /admin1/config/update of onekeyadmin v1.3.9 allows attackers to ... |
| CVE-2023-24737 | MEDIUM | 6.1 | 1.2% | Mar 6, 2023 | PMB v7.4.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the query parameter at /ad... |
| CVE-2023-24736 | CRITICAL | 9.8 | 1.6% | Mar 6, 2023 | PMB v7.4.6 was discovered to contain a remote code execution (RCE) vulnerability via the component /sauvegarde/restaure_... |
| CVE-2023-24735 | MEDIUM | 6.1 | 1.1% | Mar 6, 2023 | PMB v7.4.6 was discovered to contain an open redirect vulnerability via the component /opac_css/pmb.php. This vulnerabil... |
| CVE-2023-24734 | CRITICAL | 9.8 | 20.7% | Mar 6, 2023 | An arbitrary file upload vulnerability in the camera_upload.php component of PMB v7.4.6 allows attackers to execute arbi... |
| CVE-2023-24733 | MEDIUM | 6.1 | 1.2% | Mar 6, 2023 | PMB v7.4.6 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the query parameter at /ad... |
| CVE-2023-1161 | HIGH | 7.1 | 0.6% | Mar 6, 2023 | ISO 15765 and ISO 10681 dissector crash in Wireshark 4.0.0 to 4.0.3 and 3.6.0 to 3.6.11 allows denial of service via pac... |
| CVE-2023-0093 | HIGH | 8.8 | 1.1% | Mar 6, 2023 | Okta Advanced Server Access Client versions 1.13.1 through 1.65.0 are vulnerable to command injection due to the third p... |
| CVE-2023-26600 | MEDIUM | 6.5 | 6.3% | Mar 6, 2023 | ManageEngine ServiceDesk Plus through 14104, ServiceDesk Plus MSP through 14000, Support Center Plus through 14000, and ... |
| CVE-2023-24776 | CRITICAL | 9.8 | 1.4% | Mar 6, 2023 | Funadmin v3.2.0 was discovered to contain a remote code execution (RCE) vulnerability via the component \controller\Addo... |
| CVE-2023-24763 | HIGH | 8.8 | 0.9% | Mar 6, 2023 | In the module "Xen Forum" (xenforum) for PrestaShop, an authenticated user can perform SQL injection in versions up to 2... |
| CVE-2023-27472 | MEDIUM | 6.1 | 0.3% | Mar 6, 2023 | quickentity-editor-next is an open source, system local, video game asset editor. In affected versions HTML tags in ent... |
| CVE-2023-26054 | MEDIUM | 6.5 | 1.0% | Mar 6, 2023 | BuildKit is a toolkit for converting source code to build artifacts in an efficient, expressive and repeatable manner. I... |
| CVE-2023-23939 | HIGH | 7 | 0.4% | Mar 6, 2023 | Azure/setup-kubectl is a GitHub Action for installing Kubectl. This vulnerability only impacts versions before version 3... |
Check if your code is affected by 2023 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now